7 Configure Security Settings.
a From Ignore SSL Errors between SEG and email server, select Enable to ignore the
Secure Socket Layer (SSL) certificate errors between the email server and SEG server.
b From Ignore SSL Errors between SEG and Workspace ONE UEM server, select Enable
to ignore Secure Socket Layer (SSL) certificate errors between the Workspace ONE UEM
server and SEG server.Establish a strong SSL trust between Workspace ONE UEM and
SEG server using valid certificates.
c From Allow email flow if no policies are present on SEG , select Enable to allow the email
traffic if SEG is unable to load the device policies from the Workspace ONE UEM APIs.By
default, SEG blocks email requests if no policies are locally present.
8 Configure Cluster Settings. From Enable Clustering, select Enable if you want to enable
clustering of SEG servers. For more information, see Configure the V2 Platform section of
the VMware Secure Email Gateway guide.
9 (Optional): Configure the Automatic Password Provision setting in Google Apps. Skip this
step if you provide the Google password to your device users or if they are provided with
their SSO password that is the same as the Google password.The
Automatic Password
Provision setting is deactivated by default because it is considered to be more stable when
the Google password is managed within your organization.
a If you do not provide native passwords to device users, or if they are only provided with
SSO password and the primary directory is not Google, select Enabled.When enabled,
the UEM console provisions the Google for your users.
b Enter the following information for the UEM console to provision the Google password:
Setting
Description
Google Apps Domain Google Apps domain address.
Google Apps Sub-Domain Google Apps sub-domain address.
Google Apps admin username Complete URL as the Google Apps Admin user name.
Service account certificate Click Upload to upload to the Service account certificate. Enter the
certificate password when prompted. The certificate password is created
when generating the client ID on the Google console.
Directory service account email
address
Directory service account email address that is generated while creating
the Service Account Certificate.
Application Name Specify the project name created earlier.
Google User Email Address Certificate attribute which holds the email address of the user.
10 Enter the required settings in the Profiles tab and click Next.
For more information on the settings in the Profiles tab, see the Configure the V2 Platform
section of the VMware Secure Email Gateway guide.
11 Click Finish.
Google Sync Integration Guide
VMware, Inc. 9